Towards Privacy-Friendly Smart Products

被引:2
|
作者
Garcia, Kimberly [1 ]
Zihlmann, Zaira [2 ]
Mayer, Simon [1 ]
Tamo-Larrieux, Aurelia [1 ]
Hooss, Johannes [1 ]
机构
[1] Univ St Gallen, St Gallen, Switzerland
[2] Univ Lucerne, Luzern, Switzerland
关键词
Data Protection; GDPR; Smart Products; Internet of Things; Data Privacy Vocabulary;
D O I
10.1109/PST52912.2021.9647826
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Smart products, such as toy robots, must comply with multiple legal requirements of the countries they are sold and used in. Currently, compliance with the legal environment requires manually customizing products for different markets. In this paper, we explore a design approach for smart products that enforces compliance with aspects of the European Union's data protection principles within a product's firmware through a toy robot case study. To this end, we present an exchange between computer scientists and legal scholars that identified the relevant data flows, their processing needs, and the implementation decisions that could allow a device to operate while complying with the EU data protection law. By designing a data-minimizing toy robot, we show that the variety, amount, and quality of data that is exposed, processed, and stored outside a user's premises can be considerably reduced while preserving the device's functionality. In comparison with a robot designed using a traditional approach, in which 90% of the collected types of information are stored by the data controller or a remote service, our proposed design leads to the mandatory exposure of only 7 out of 15 collected types of information, all of which are legally required by the data controller to demonstrate consent. Moreover, our design is aligned with the Data Privacy Vocabulary, which enables the toy robot to cross geographic borders and seamlessly adjust its data processing activities to the local regulations.
引用
收藏
页数:7
相关论文
共 50 条
  • [1] Privacy-Friendly Smart Environments
    Armac, Ibrahim
    Panchenko, Andriy
    Pettau, Marcel
    Retkowitz, Daniel
    [J]. THIRD INTERNATIONAL CONFERENCE ON NEXT GENERATION MOBILE APPLICATIONS, SERVICES, AND TECHNOLOGIES, PROCEEDINGS, 2009, : 425 - 431
  • [2] Privacy-Friendly Aggregation for the Smart-Grid
    Kursawe, Klaus
    Danezis, George
    Kohlweiss, Markulf
    [J]. PRIVACY ENHANCING TECHNOLOGIES, 2011, 6794 : 175 - +
  • [3] Privacy-Friendly Appliance Load Scheduling in Smart Grids
    Rottondi, Cristina
    Verticale, Giacomo
    [J]. 2013 IEEE INTERNATIONAL CONFERENCE ON SMART GRID COMMUNICATIONS (SMARTGRIDCOMM), 2013, : 420 - 425
  • [4] PriMSED - Privacy-Friendly Measurement of Smart Entertainment Devices
    Ghiglieri, Marco
    [J]. 2015 12TH ANNUAL IEEE CONSUMER COMMUNICATIONS AND NETWORKING CONFERENCE, 2015, : 65 - 70
  • [5] A Decisional Attack to Privacy-friendly Data Aggregation in Smart Grids
    Rottondi, Cristina
    Savi, Marco
    Polenghi, Daniele
    Verticale, Giacomo
    Krauss, Christoph
    [J]. 2013 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2013, : 2616 - 2621
  • [6] Privacy-friendly Distributed Algorithm for Energy Management in Smart Grids
    Brettschneider, Daniel
    Scheerhorn, Alfred
    Hoelker, Daniel
    Roer, Peter
    Toenjes, Ralf
    [J]. 2015 INTERNATIONAL CONFERENCE ON NETWORKED SYSTEMS (NETSYS), 2015,
  • [7] A Privacy-Friendly Gaming Framework in Smart Electricity and Water Grids
    Rottondi, Cristina
    Verticale, Giacomo
    [J]. IEEE ACCESS, 2017, 5 : 14221 - 14233
  • [8] Efficient, Verifiable, Secure, and Privacy-Friendly Computations for the Smart Grid
    Borges, Fabio
    Volk, Florian
    Muehlhaeuser, Max
    [J]. 2015 IEEE POWER & ENERGY SOCIETY INNOVATIVE SMART GRID TECHNOLOGIES CONFERENCE (ISGT), 2015,
  • [9] Efficient, Verifiable, Secure, and Privacy-Friendly Computations for the Smart Grid
    Borges, Fabio
    Volk, Florian
    Muhlhauser, Max
    [J]. 2015 IEEE POWER & ENERGY SOCIETY INNOVATIVE SMART GRID TECHNOLOGIES CONFERENCE (ISGT), 2015,
  • [10] Privacy-friendly Secure Bidding Scheme for Demand Response in Smart Grid
    Rahman, Mohammad Shahriar
    Basu, Anirban
    Kiyomoto, Shinsaku
    [J]. 2015 IEEE FIRST INTERNATIONAL SMART CITIES CONFERENCE (ISC2), 2015,